Commit 217d212
fix: bump cryptography, marshmallow, and pip for Docker Scout CVEs
- cryptography~=44.0.2 → ~=46.0.5 (HIGH CVE-2026-26007)
- marshmallow~=3.19.0 → ~=3.26.2 (MEDIUM CVE-2025-68480)
- Upgrade pip in BE Dockerfile runtime stage (MEDIUM CVE-2025-8869, LOW CVE-2026-1703)
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>1 parent 503643e commit 217d212
2 files changed
Lines changed: 4 additions & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
32 | 32 | | |
33 | 33 | | |
34 | 34 | | |
35 | | - | |
| 35 | + | |
| 36 | + | |
36 | 37 | | |
37 | 38 | | |
38 | 39 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
26 | 26 | | |
27 | 27 | | |
28 | 28 | | |
29 | | - | |
| 29 | + | |
30 | 30 | | |
31 | 31 | | |
32 | 32 | | |
33 | 33 | | |
34 | | - | |
| 34 | + | |
35 | 35 | | |
36 | 36 | | |
37 | 37 | | |
| |||
0 commit comments